2003 CVE Vulnerabilities

1,555 CVEs published in 2003.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2003-1311siteminderagent/SmMakeCookie.ccc in Netegrity SiteMinder does not ensure that the TARGET parameter names a valid redirec...
CVE-2003-1212MaxWebPortal 1.30 allows remote attackers to perform unauthorized actions by modifying hidden form fields, such as the (...
CVE-2003-1409TOPo 1.43 allows remote attackers to obtain sensitive information by sending an HTTP request with an invalid parameter t...
CVE-2003-1122ScriptLogic 4.01, and possibly other versions before 4.14, uses insecure permissions for the LOGS$ share, which allows u...
CVE-2003-1489upload.php in Truegalerie 1.0 allows remote attackers to read arbitrary files by specifying the target filename in the f...
CVE-2003-1509Real Networks RealOne Enterprise Desktop 6.0.11.774, RealOne Player 2.0, and RealOne Player 6.0.11.818 through RealOne P...
CVE-2003-1209The Post_Method function in Monkey HTTP Daemon before 0.6.2 allows remote attackers to cause a denial of service (crash)...
CVE-2003-1276Netfone.exe of NetTelephone 3.5.6 uses weak encryption for user PIN's and stores user account numbers in plaintext in th...
CVE-2003-1310The DeviceIoControl function in the Norton Device Driver (NAVAP.sys) in Symantec Norton AntiVirus 2002 allows local user...
CVE-2003-1322Multiple stack-based buffer overflows in Atrium MERCUR IMAPD in MERCUR Mailserver before 4.2.15.0 allow remote attackers...
CVE-2003-1416BisonFTP Server 4 release 2 allows remote attackers to cause a denial of service (CPU consumption) via a long (1) ls or ...
CVE-2003-0885Xscreensaver 4.14 contains certain debugging code that should have been omitted, which causes Xscreensaver to create tem...
CVE-2003-0627psdoccgi.exe in PeopleSoft PeopleTools 8.4 through 8.43 allows remote attackers to cause a denial of service (applicatio...
CVE-2003-1341The default installation of Trend Micro OfficeScan 3.0 through 3.54 and 5.x allows remote attackers to bypass authentica...
CVE-2003-1345Directory traversal vulnerability in s.dll in WebCollection Plus 5.00 allows remote attackers to view arbitrary files in...
CVE-2003-0959Multiple integer overflows in the 32bit emulation for AMD64 architectures in Linux 2.4 kernel before 2.4.21 allows attac...
CVE-2003-1221BEA WebLogic Express and Server 7.0 through 8.1 SP 1, under certain circumstances when a request to use T3 over SSL (t3s...
CVE-2003-1344Trend Micro Virus Control System (TVCS) Log Collector allows remote attackers to obtain usernames, encrypted passwords, ...
CVE-2003-1342Trend Micro Virus Control System (TVCS) 1.8 running with IIS allows remote attackers to cause a denial of service (memor...
CVE-2003-1120Race condition in SSH Tectia Server 4.0.3 and 4.0.4 for Unix, when the password change plugin (ssh-passwd-plugin) is ena...
CVE-2003-0956Multiple race conditions in the handling of O_DIRECT in Linux kernel prior to version 2.4.22 could cause stale data to b...
CVE-2003-0317iisPROTECT 2.1 and 2.2 allows remote attackers to bypass authentication via an HTTP request containing URL-encoded chara...
CVE-2003-1440SpamProbe 0.8a allows remote attackers to cause a denial of service (crash) via HTML e-mail with newline characters with...
CVE-2003-1223The Node Manager for BEA WebLogic Express and Server 6.1 through 8.1 SP 1 allows remote attackers to cause a denial of s...
CVE-2003-1490SonicWall Pro running firmware 6.4.0.1 allows remote attackers to cause a denial of service (device reset) via a long HT...

Check if your code is affected by 2003 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now